Show filters
67 Total Results
Displaying 1-10 of 67
Sort by:
Attacker Value
High

CVE-2017-12542

Disclosure Date: February 15, 2018 (last updated November 26, 2024)
A authentication bypass and execution of code vulnerability in HPE Integrated Lights-out 4 (iLO 4) version prior to 2.53 was found.
1
Attacker Value
Unknown

CVE-2024-20906

Disclosure Date: January 16, 2024 (last updated January 21, 2024)
Vulnerability in the Integrated Lights Out Manager (ILOM) product of Oracle Systems (component: System Management). Supported versions that are affected are 3, 4 and 5. Easily exploitable vulnerability allows high privileged attacker with network access via ICMP to compromise Integrated Lights Out Manager (ILOM). Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Integrated Lights Out Manager (ILOM), attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of Integrated Lights Out Manager (ILOM) accessible data as well as unauthorized read access to a subset of Integrated Lights Out Manager (ILOM) accessible data. CVSS 3.1 Base Score 4.8 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N).
Attacker Value
Unknown

CVE-2023-50272

Disclosure Date: December 19, 2023 (last updated December 29, 2023)
A potential security vulnerability has been identified in HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 6 (iLO 6). The vulnerability could be remotely exploited to allow authentication bypass.
Attacker Value
Unknown

CVE-2023-30911

Disclosure Date: October 18, 2023 (last updated October 25, 2023)
HPE Integrated Lights-Out 5, and Integrated Lights-Out 6 using iLOrest may cause denial of service.
Attacker Value
Unknown

CVE-2023-28092

Disclosure Date: May 01, 2023 (last updated October 08, 2023)
A potential security vulnerability has been identified in HPE ProLiant RL300 Gen11 Server. The vulnerability could result in the system being vulnerable to exploits by attackers with physical access inside the server chassis.
Attacker Value
Unknown

CVE-2021-46846

Disclosure Date: December 12, 2022 (last updated November 08, 2023)
Cross Site Scripting vulnerability in Hewlett Packard Enterprise Integrated Lights-Out 5.
Attacker Value
Unknown

CVE-2022-28640

Disclosure Date: September 20, 2022 (last updated October 08, 2023)
A potential local adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability was discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated firmware for HPE Integrated Lights-Out 5 (iLO 5) that addresses this security vulnerability.
Attacker Value
Unknown

CVE-2022-28639

Disclosure Date: September 20, 2022 (last updated October 08, 2023)
A remote potential adjacent denial of service (DoS) and potential adjacent arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated firmware for HPE Integrated Lights-Out 5 (iLO 5) that addresses these security vulnerabilities.
Attacker Value
Unknown

CVE-2022-28638

Disclosure Date: September 20, 2022 (last updated October 08, 2023)
An isolated local disclosure of information and potential isolated local arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated firmware for HPE Integrated Lights-Out 5 (iLO 5) that addresses these security vulnerabilities.
Attacker Value
Unknown

CVE-2022-28637

Disclosure Date: September 20, 2022 (last updated October 08, 2023)
A local Denial of Service (DoS) and local arbitrary code execution vulnerability that could potentially lead to a loss of confidentiality, integrity, and availability were discovered in HPE Integrated Lights-Out 5 (iLO 5) in Version: 2.71. Hewlett Packard Enterprise has provided updated firmware for HPE Integrated Lights-Out 5 (iLO 5) that addresses these security vulnerabilities.